Close Menu
TechCentralTechCentral

    Subscribe to the newsletter

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    Facebook X (Twitter) YouTube LinkedIn
    WhatsApp Facebook X (Twitter) LinkedIn YouTube
    TechCentralTechCentral
    • News
      Consumers get new weapon against direct marketing spam

      Consumers get new weapon against phone call spam

      16 April 2026
      Standard Bank data breach fallout deepens

      Standard Bank data breach fallout deepens

      16 April 2026
      Gemini gets personal for South African users

      Gemini gets personal for South African users

      16 April 2026
      South Africa's AI moment is now - and we risk blowing it - Stafford Masie

      South Africa’s AI moment is now – and we risk blowing it

      16 April 2026
      Stafford Masie: South Africa risks regulating away its AI future

      Stafford Masie: South Africa risks regulating away its AI future

      16 April 2026
    • World
      Adobe bets on AI agents to fend off cheaper rivals

      Adobe bets on AI agents to fend off cheaper rivals

      16 April 2026
      Google poised to lose ad crown to Meta

      Google poised to lose ad crown to Meta

      14 April 2026
      Grand Theft Data - hackers hit Rockstar Games - Grand Theft Auto

      Grand Theft Data – hackers hit Rockstar Games

      14 April 2026
      UK PM Keir Starmer declares war on doomscrolling

      UK PM Keir Starmer declares war on doomscrolling

      13 April 2026
      Big Tech is going nuclear

      Big Tech is going nuclear

      10 April 2026
    • In-depth
      Africa switches on as Europe dims the lights

      Africa switches on as Europe dims the lights

      9 April 2026
      The biggest untapped EV market on Earth is hiding in plain sight

      The biggest untapped EV market on Earth is hiding in plain sight

      1 April 2026
      The R18-billion tech giant hiding in plain sight - Jens Montanana

      The R16-billion tech giant hiding in plain sight

      26 March 2026
      The last generation of coders

      The last generation of coders

      18 February 2026
      Sentech is in dire straits

      Sentech is in dire straits

      10 February 2026
    • TCS
      TCS | Werner Lindemann on how AI is rewriting the infosec rulebook

      TCS | Werner Lindemann on how AI is rewriting the infosec rulebook

      15 April 2026
      TCS | Donovan Marsh on AI and the future of filmmaking

      TCS | Donovan Marsh on AI and the future of filmmaking

      7 April 2026
      TCS+ | Vodacom Business moves to crack the SME tech gap - Andrew Fulton, Sannesh Beharie

      TCS+ | Vodacom Business moves to crack the SME tech gap

      7 April 2026
      TCS | MTN's Divysh Joshi on the strategy behind Pi - Divyesh Joshi

      TCS | MTN’s Divyesh Joshi on the strategy behind Pi

      1 April 2026
      Anoosh Rooplal

      TCS | Anoosh Rooplal on the Post Office’s last stand

      27 March 2026
    • Opinion
      The conflict of interest at the heart of PayShap's slow adoption - Cheslyn Jacobs

      The conflict of interest at the heart of PayShap’s slow adoption

      26 March 2026
      South Africa's energy future hinges on getting wheeling right - Aishah Gire

      South Africa’s energy future hinges on getting wheeling right

      10 March 2026
      Hold the doom: the case for a South African comeback - Duncan McLeod

      Apple just dropped a bomb on the Windows world

      5 March 2026
      R230-million in the bag for Endeavor's third Harvest Fund - Alison Collier

      VC’s centre of gravity is shifting – and South Africa is in the frame

      3 March 2026
      Hold the doom: the case for a South African comeback - Duncan McLeod

      Hold the doom: the case for a South African comeback

      26 February 2026
    • Company Hubs
      • 1Stream
      • Africa Data Centres
      • AfriGIS
      • Altron Digital Business
      • Altron Document Solutions
      • Altron Group
      • Arctic Wolf
      • Ascent Technology
      • AvertITD
      • BBD
      • Braintree
      • CallMiner
      • CambriLearn
      • CYBER1 Solutions
      • Digicloud Africa
      • Digimune
      • Domains.co.za
      • ESET
      • Euphoria Telecom
      • HOSTAFRICA
      • Incredible Business
      • iONLINE
      • IQbusiness
      • Iris Network Systems
      • Kaspersky
      • LSD Open
      • Mitel
      • NEC XON
      • Netstar
      • Network Platforms
      • Next DLP
      • Ovations
      • Paracon
      • Paratus
      • Q-KON
      • SevenC
      • SkyWire
      • Solid8 Technologies
      • Telit Cinterion
      • Telviva
      • Tenable
      • Vertiv
      • Videri Digital
      • Vodacom Business
      • Wipro
      • Workday
      • XLink
    • Sections
      • AI and machine learning
      • Banking
      • Broadcasting and Media
      • Cloud services
      • Contact centres and CX
      • Cryptocurrencies
      • Education and skills
      • Electronics and hardware
      • Energy and sustainability
      • Enterprise software
      • Financial services
      • HealthTech
      • Information security
      • Internet and connectivity
      • Internet of Things
      • Investment
      • IT services
      • Lifestyle
      • Motoring
      • Policy and regulation
      • Public sector
      • Retail and e-commerce
      • Satellite communications
      • Science
      • SMEs and start-ups
      • Social media
      • Talent and leadership
      • Telecoms
    • Events
    • Advertise
    TechCentralTechCentral
    Home » Sections » Information security » Theft and misuse of data is the greatest risk to SA businesses

    Theft and misuse of data is the greatest risk to SA businesses

    Promoted | TechCentral and Next DLP recently hosted a roundtable with leading executives to talk about their data loss prevention strategies. This is what transpired.
    By Next DLP6 April 2023
    Twitter LinkedIn Facebook WhatsApp Email Telegram Copy Link
    News Alerts
    WhatsApp

    It’s difficult to believe that the zettabyte (or 1 000 bytes to the seventh power) didn’t exist before 2012. By the end of 2022, it was predicted that there would be 97 zettabytes of data in the world, with a single person generating 1.7MB of data every second. Not only that, but the data itself lives everywhere – from mainframes to corporate devices to hybrid multi-cloud environments.

    Additionally, more and more companies are backing up their files, creating business continuity plans, organising incident response teams, and investing a significant amount of money in data protection and data loss prevention. But why do they do that?

    Skyrocketing threats

    As the number and severity of cybersecurity incidents rise each year, organisations are coming under increasing pressure to find measures to protect their customers’ data. Sixty to 70% of all data loss incidents warrant either public disclosure or have a negative financial impact. The cost of a data breach averages US$4.25-million per incident and businesses fall victim to cyberattacks on average every 11 seconds, but it can take around nine months to identify and contain a data breach.

    If it were measured as a country, then cybercrime – which is predicted to inflict damages totalling $10.5-trillion by 2025 – would be the third largest economy after the US and China, and would be more profitable than the global trade of all major illegal drugs combined.

    While external adversaries are continuing to evolve their tactics, it is worth noting that internal data breaches by negligent or disgruntled employees are also increasing – and account for nearly half of all data breaches.

    The South African approach

    To unpack how South African businesses are approaching data loss prevention, TechCentral hosted a roundtable conversation sponsored by Next DLP with some of the country’s leading executives across a range of industries at the Saxon Hotel & Spa in Sandton.

    Attendees delved into the tools, procedures and best practices that are available to protect their data, as well as the role of leadership and employee education in developing an ethical, data-driven, security-conscious culture.

    They all agreed that data loss prevention (DLP) is the responsibility of everyone in a business and that today’s companies require a holistic approach that fully confronts cybersecurity as a human behaviour and motivation problem, as opposed to a technical problem.

    Employees remain the biggest threat

    Most delegates agreed that while cybersecurity threats are always evolving and third-party contractors and vendors are a key risk to any entity, one consistent vulnerability remains the same: employees. People internal to an organisation are a frequent cause of data breaches, predominantly through negligence, but also with ill intentions in some cases.

    To address this ever-increasing challenge, the attendees identified simple but critical interventions:

    • Amp up training and keep up to date. Many attendees shared that they have training programmes in place but agreed that the depth and breadth of the content, as well as the mode and frequency of delivery of the content, is not sufficient to drive meaningful changes in behaviour. Employees need training delivered in innovative, proactive ways, in real time at the point of an incident occurring. Businesses should also keep abreast of industry trends by sharing information and consulting with industry peers.
    • Make cybersecurity and data protection a priority. Delegates agreed that it is essential to focus security spending where it is needed the most, securing networks, systems, applications, devices, physical premises, developing security and sharing protocols, and implementing incident response processes. That said, there was consensus that while data loss prevention strategy and decisions are often handled by members of IT, data management and compliance teams: data loss prevention is everyone’s responsibility, and leadership support has become critical to operationalising an effective DLP programme.

    The role of leadership security culture

    As an often overlooked component of “people, processes and technology”, internal culture and security awareness are sometimes the only things that come between an organisation and a successful cyberattack.

    All attendees agreed that modifying the existing corporate culture to drive a heightened level of security awareness requires buy-in and support from all leaders within the company. They should be responsible for supporting the initiative, leading by example, understanding information security, and being involved in creating items such as the incident response plan, business continuity plan and other key procedures.

    Culture is not about words. It is about deeds. Employees notice what leadership teams do, not what they say.

    Respect customer data, privacy

    Back n 2010, Steve Jobs said: “Privacy means people know what they’re signing up for, in plain language, and repeatedly. I believe people are smart. Some people want to share more than other people do. Ask them.”

    Over a decade later, those words are slowly but surely becoming a requirement for organisations that fall subject to privacy regulations, such as Popia and GDPR, especially those whose business models have their foundations in the processing of significant volumes of sensitive customer data.

    Attendees agreed that, in addition to compliance with the law, smart businesses know that having a robust DLP programme in place is just good business. With the explosion of digital technologies consumers are deeply anxious about how their personal information may be used and protected and participants shared the view that their organisations are increasingly at risk of their customers switching companies or providers if their data practices are not robust.

    In their view, an organisation’s data loss prevention programme can be a competitive differentiator. In fact, one large financial services firm shared that it is “very actively” looking to shape its data management policies and practices.

    The role of AI, ML

    Attendees were asked to unpack the role of artificial intelligence and machine learning in the context of security, specifically whether or not they have designed and future-proofed a programme with these technologies in mind.

    It was agreed, despite the fact that AI and ML are already powering tools that give business decision-making processes a massive upgrade, myths around AI continue to abound, particularly concerns about job security.

    That said, participants were of the view that the immediate and long-term benefits of integrating AI into a business’s cybersecurity ecosystem (such as improving protection and remediation due to AI’s ability to detect nuanced attacks and enhance incident response) should be explored further. This is particularly true when it comes to tools that enable an organisation to get visibility, analysis and understanding of data flows and activity across all users and endpoints have the ability to transform the landscape.

    A holistic approach to DLP

    Despite the numerous and sometimes divergent challenges faced by information security, data privacy and compliance professionals, the common sentiment shared by all attendees was that a holistic approach to data loss prevention is key.

    This approach needs to combine the use of information security tools and technologies; employee behavioural modification training that reinforces good behaviour; and effective policies, procedures and standards. Furthermore, this approach is critical to effectively countering cyber threats, while simultaneously delivering additional value beyond data protection to the organisation.

    TechCentral, in partnership with Next DLP, would like to thank all of those who participated in the roundtable discussion.

    About Next
    Next DLP (“Next”) is a leading provider of data protection solutions for organisations with valuable data that must uncover risk, educate employees, and fulfil security, compliance and regulatory needs. Next’s mission is to reinvent data protection for today’s distributed organisation. It is disrupting the legacy data loss prevention market with a user-centric, flexible, cloud-native, AI/ML-powered solution built for today’s threat landscape. The company’s leadership brings decades of cyber and technology experience from Fortra (previously HelpSystems), DigitalGuardian, Forcepoint, Mimecast, IBM, Cisco and Veracode. Next is trusted by organisations big and small, from the Fortune 100 to fast-growing healthcare and technology companies. For more, visit www.nextdlp.com or connect on LinkedIn and YouTube.

    • Read more articles by Next DLP on TechCentral
    • This promoted content was paid for by the party concerned
    Follow TechCentral on Google News Add TechCentral as your preferred source on Google


    NeXT Next DLP
    WhatsApp YouTube
    Share. Facebook Twitter LinkedIn WhatsApp Telegram Email Copy Link
    Previous ArticleTCS | MetroFibre CEO on the township broadband opportunity
    Next Article Samsung investors brace for worst profit in 14 years

    Related Posts

    LRMG takes the path to proactive data protection - Nadia Veeran-Patel

    LRMG takes the path to proactive data protection

    17 July 2024
    Recapping an extraordinary month at Next DLP

    Recapping an extraordinary month at Next DLP

    12 June 2024
    Next DLP announces Reveal Beyond

    Next DLP announces Reveal Beyond

    2 May 2024
    Add A Comment

    Comments are closed.

    Company News
    Fibre: the backbone of South Africa's digital health ecosystem - Mweb

    Fibre: the backbone of South Africa’s digital health ecosystem

    16 April 2026
    New man to accelerate wholesale connectivity in the DRC - Gaetan Soltesz, FAST Congo

    New man to accelerate wholesale connectivity in the DRC

    15 April 2026
    Avast Business and Avert IT Distribution rewrite the SMB cybersecurity playbook

    Avast Business and Avert IT Distribution rewrite the SMB cybersecurity playbook

    15 April 2026
    Opinion
    The conflict of interest at the heart of PayShap's slow adoption - Cheslyn Jacobs

    The conflict of interest at the heart of PayShap’s slow adoption

    26 March 2026
    South Africa's energy future hinges on getting wheeling right - Aishah Gire

    South Africa’s energy future hinges on getting wheeling right

    10 March 2026
    Hold the doom: the case for a South African comeback - Duncan McLeod

    Apple just dropped a bomb on the Windows world

    5 March 2026

    Subscribe to Updates

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    Latest Posts
    Consumers get new weapon against direct marketing spam

    Consumers get new weapon against phone call spam

    16 April 2026
    Standard Bank data breach fallout deepens

    Standard Bank data breach fallout deepens

    16 April 2026
    Gemini gets personal for South African users

    Gemini gets personal for South African users

    16 April 2026
    South Africa's AI moment is now - and we risk blowing it - Stafford Masie

    South Africa’s AI moment is now – and we risk blowing it

    16 April 2026
    © 2009 - 2026 NewsCentral Media
    • Cookie policy (ZA)
    • TechCentral – privacy and Popia

    Type above and press Enter to search. Press Esc to cancel.

    Manage consent

    TechCentral uses cookies to enhance its offerings. Consenting to these technologies allows us to serve you better. Not consenting or withdrawing consent may adversely affect certain features and functions of the website.

    Functional Always active
    The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
    Preferences
    The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
    Statistics
    The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
    Marketing
    The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
    • Manage options
    • Manage services
    • Manage {vendor_count} vendors
    • Read more about these purposes
    View preferences
    • {title}
    • {title}
    • {title}